Uploaded image for project: 'Qpid JMS'
  1. Qpid JMS
  2. QPIDJMS-361

request mutual auth for GSSAPI/Kerberos SASL

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Closed
    • Major
    • Resolution: Fixed
    • 0.29.0
    • 0.30.0
    • qpid-jms-client
    • None

    Description

      The JMS client does not currently request mutual-auth when authenticating via GSSAPI/Kerberos, since this is not performed by default by the JVMs SaslServer impl. The cyrus-sasl usage of proton-c and qpid-cpp clients for GSSAPI does result in mutual-auth, where it seems it is performed by default by Cyrus. The JMS client should be updated to match, making their behaviour consistent.

      Attachments

        Activity

          People

            robbie Robbie Gemmell
            robbie Robbie Gemmell
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: